Fun with Footguns in BoringSolidity
Blog icononewayfunction
Jan 26
I came across a fun footgun in the BoringSolidity contracts library and wanted to share it so future devs (and their users) don’t lose a foot. It is closely related to the vuln that samczsun found in the MISO fundraise. Here it is in a single line:contract ThisCanBeDrainedOfETH is BoringBatchable, BoringFactory {} That is to say, any contract that inherits both BoringBatchable and BoringFactory can be drained of all ETH by anyone. We’ll discuss below how it works, but if you want to try to fi...

Most popular by onewayfunction

Principal Freezing and Ransom Attacks with MasterChefV2

Principal Freezing and Ransom Attacks with MasterChefV2

onewayfunction

Written by
onewayfunction

Security research. MEV consulting. Crypto nerd. Formerly: Flashbots, OpenZeppelin, Augur, OpenBazaar.

Subscribe

2025 Paragraph Technologies Inc

PopularTrendingPrivacyTermsHome
Search...Ctrl+K

onewayfunction

Subscribe